[Samba] will bad things happen if samba4 AD not binding 127.0.0.1?

Rowland Penny rowlandpenny241155 at gmail.com
Sun Nov 15 17:46:09 UTC 2015


On 15/11/15 17:29, d tbsky wrote:
> 2015-11-16 0:04 GMT+08:00 Rowland Penny <rowlandpenny241155 at gmail.com 
> <mailto:rowlandpenny241155 at gmail.com>>:
>
>     Oh dear, somebody else getting creative with dns :-)
>
>     You do know that the internal DNS server also listens on
>     127.0.0.1, don't you ?
>
>     If you must use something else to get two forwarders, use Bind9
>     instead of the internal dns server. The use of dnsmasq is not
>     supported on a Samba AD DC.
>
>     Rowland
>
>
>     -- 
>     To unsubscribe from this list go to the following URL and read the
>     instructions: https://lists.samba.org/mailman/options/samba
>
>
>
> hi:
>      if smb.conf only bind eth0, then the internal DNS didn't listen 
> on 127.0.0.1.  I have checked that. i am just worried about bad things 
> when it is not listen  on 127.0.0.1.
>
>     and in my case I think dnsmasq in not related to samba AD DC. it 
> is running as a dns cache, forward to it is just like forward to 
> another dns server.
>
>      I think i can run dnsmasq at an network interface which is not 
> related to samba to make it absolutely safe, but I don't know if it is 
> really necessary to do that. everything seems works fine...
>
>     thanks again for your information!
>
> Regards,
> tbskyd
>
>

It is your DC and you get to pick up the pieces.

Rowland


More information about the samba mailing list